The Quarterly Threat Landscape Report is out. See what attackers are targeting now.Read report

Vulnerability & Exploit Database

Rapid7’s curated database of vulnerabilities, featuring exploit modules and check methods integrated into the Metasploit Framework.

Emergent Threat6
TitleEitWModules
CVE-2026-93211: Undefined Security WeaknessN/AN/A0%Sep 24, 2026
CVE-2026-93210: Undefined Security WeaknessN/AN/A0%Sep 24, 2026
CVE-2026-93209: Undefined Security WeaknessN/AN/A0%Sep 24, 2026
CVE-2026-93208: Undefined Security WeaknessN/AN/A0%Sep 24, 2026
CVE-2026-93207: Undefined Security Weakness9.8 CriticalN/A0%Sep 24, 2026
CVE-2026-93206: Undefined Security WeaknessN/AN/A0%Sep 24, 2026
CVE-2026-93205: Undefined Security WeaknessN/AN/A0%Sep 24, 2026
CVE-2026-92680: Insufficiently Protected Credentials5.5 Medium6.8 Medium0%Sep 24, 2026
CVE-2026-88371: Undefined Security WeaknessN/AN/A0%Sep 24, 2026
CVE-2026-88370: Heap-based Buffer Overflow5.3 MediumN/A0%Sep 24, 2026
CVE-2026-88369: Out-of-bounds Read7.3 HighN/A0%Sep 24, 2026
CVE-2026-88368: Incorrect Conversion between Numeric Types7.5 HighN/A0%Sep 24, 2026
CVE-2026-88366: Undefined Security WeaknessN/AN/A0%Sep 24, 2026
CVE-2026-88365: Integer Overflow or Wraparound9.8 CriticalN/A0%Sep 24, 2026
CVE-2026-88362: Incorrect Conversion between Numeric Types7.5 HighN/A0%Sep 24, 2026
CVE-2026-88361: Integer Overflow or Wraparound7.5 HighN/A0%Sep 24, 2026
CVE-2026-88358: Out-of-bounds Read6.5 MediumN/A0%Sep 24, 2026
CVE-2026-88357: Incorrect Bitwise Shift of Integer7.5 HighN/A1%Sep 24, 2026
CVE-2026-88355: Undefined Security WeaknessN/AN/A0%Sep 24, 2026
CVE-2026-79761: Improper Neutralization of Special Elements used in an OS Command6.6 MediumN/A0%Sep 24, 2026
CVE-2026-79760: Server-Side Request Forgery (SSRF)6.4 MediumN/A0%Sep 24, 2026
CVE-2026-79759: Authorization Bypass Through User-Controlled Key4.3 MediumN/A0%Sep 24, 2026
CVE-2026-79758: Improper Access Control5.4 MediumN/A0%Sep 24, 2026
CVE-2026-77581: Server-Side Request Forgery (SSRF)8.6 HighN/A0%Sep 24, 2026
CVE-2026-76907: Exposure of Sensitive Information to an Unauthorized Actor6.5 MediumN/A0%Sep 24, 2026
4001-4025 of 475154